Artificial intelligence is now the primary reason organizations are increasing their cybersecurity budgets, according to the 2026 Security Budget Benchmark Report from IANS and Artico Search. Seven out of every 10 chief information security officers surveyed identified AI as their top priority for new security spending, even as overall budget growth remains modest at 5%, barely ahead of the 4% increase reported last year.

Where the AI money is going

The report, based on a survey of more than 500 security executives, breaks AI-related spending into two specific categories. The first is automating security operations, where AI handles tasks like monitoring alert queues, correlating threat intelligence, and triaging incidents that would otherwise require human analysts working through backlogs. The second is enhancing identity and access management, where AI helps detect compromised credentials, flag abnormal access patterns, and enforce policies dynamically rather than relying on static rule sets.

These are not speculative investments. CISOs are deploying AI tools into existing workflows to address the volume problem that has plagued security teams for years. The average security operations center processes thousands of alerts per day, most of which are false positives. AI does not eliminate the need for human judgment, but it can filter the noise and surface the signals that actually matter.

The employment question is settling down

Early fears that AI would replace security analysts have not materialized. The survey found that eight out of 10 CISOs expect AI will create demand for new cybersecurity roles and skills, not reduce the existing workforce. Seven out of 10 said they do not expect to cut headcount because of AI.

What is changing is the skill mix. Security teams need people who can work alongside AI tools, interpret their outputs, and handle the judgment calls that automation cannot make. The job is not disappearing. It is shifting from alert triage and manual investigation toward oversight, policy design, and response coordination.

Both sides are scaling with AI

The report notes that organizations are increasingly using AI to discover software flaws and hunt for threat activity within their systems. At the same time, criminal and state-linked hackers are using AI to enhance the speed and scope of their attacks. The defensive advantage that AI provides is real, but it is not a one-sided arms race.

This is the context behind the modest overall spending growth. CISOs are not getting dramatically larger budgets. They are redirecting existing dollars toward AI capabilities because the threat landscape demands it. The 5% overall increase masks a more significant reallocation within that budget, where AI tools are consuming a growing share of available funds.

What the numbers tell us about the market

The report paints a picture of an industry in transition. AI has moved from a curiosity in cybersecurity budgets to the leading driver of new investment in a single year. But the spending is targeted, not indiscriminate. CISOs are focused on two concrete use cases, operations automation and identity management, where AI demonstrates measurable value rather than pursuing broad, unproven AI adoption across the security stack.

The employment data suggests that the industry has moved past the initial panic about AI replacing security workers. The consensus now is that AI will change what security professionals do, create new roles around AI oversight and tool management, and ultimately make existing teams more productive rather than smaller. Whether that optimistic view holds as AI capabilities continue to advance is the open question that will shape cybersecurity budgets for years to come.